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(54) Solid State on-person data carrier 
and associated data processing system 

(57) A pocket-size object which may be 
used as a 'card' for a variety of person- 
ally based data transactions, (personal 
identification, supply of a control func- 
tion to a machine, debiting an account 
with instant (off-line) credit sufficiency 
check; a method of securely paying to a 
vending machine, etc, comprises in 
combination: 

magnetically permeable elements; at 
least one integrated circuit comprising 
memory and logic functions; ac/dc con- 
verting means for providing the internal 
operating voltages at the moment of 
use; and means for sequential synchro- 
nizing with a fixed data processing 
installation. The data carrier comprises 
memory devices which are so consti- 
tuted that they can liold data after 
power is removed and in the preferred 
form a single chip is shown to comprise 
both memory, address-, logic, and com- 
puting functions. 

The component also has spare menrv 
ory capacity reserved for holding a 
special 'check number' which, however, 
cannot be read out by any means. They 
serve the security protection of the 
main data and provide a safeguard that 
only authorized alteration of the data 
contents can take place. 
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SPECIFICATION 

Solid state on-person data carrier 

5 The principle of a solid state pocket-size carrier of electronically stored digital data and the manner of 5 

reactively transferring data bi-directionally between said carrier and a stationary computer has already been 
, described by the applicants in a British patent ^ . . . . 

One drawback of the initial design was the inadequate protection against accidental or fraudulent entry of 
new data This would be particulariy serious if the data carrier were used as a means of payment. Another 
1Q drawback - when the data carrier contained variable data - was the dependence on a battery fitted into the 10 

data carrier. .^^1.^1 

This paper describes several innovative improvements. One of them is a method for battery-less 
operation. Another is a simplified and more robust mechanical construction of the data carrier. A third is the 
provision of protective data and a method for changing them at random intervals. 

As to the first mentioned improvement it is characterized by the incorporation of an electncally alterable 
Memory chip. The second, by proposing a earner structure which provides a single magnetic circuit instead 
of several such. The third improvement is achieved by the combination of dedicated hardware and software 
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concepts. 

In the drawing which illustrate these improvements. 

Figure 1 is a partial cross section A - A through a portable data earner 20 
Figure 2 is a section B - B of the same 
Figure 3 is a sectional view of the data sensor unit 

Figure 4 is a section B - B through said data sensor showing drive and data coils 
Figure 5\s an auxiliary sketch showing the chief electrical constitution of thecurrent flow in the coils 
Figures 6, 7 and 8 show the logic circuitry and associated power supply in the interior of the data carrier. 

Figures 9 Bx\6 10 show essential portions of the logic circuitry of the data processor and data transfer 
control unit which is associated with the data sensor unit Rgures3 and 4. 

30 

30 Description of on-person data earner ... . . j 

The same consists of a moulded or otherwise formed object 1 of ferric ceramic having a central core 1c and 
finlike extensions 1 b. The corners 1 a of the essentially square-like object are re-inf orced in thickness. Coils 3 
and 3a are fitted to the core. A further coil with much fewer number of turns than 3 is the coil 4. A printed 
circuit board 2 Is attached to both sides of the central disk, and carries the various electrical and IC 

35 components such as flat packages 5 and 6 or capacitor 7, etc. The whole assembly may be closed by side 35 
Dlates 2a and potted in suitable resin or silicon compound. The finished ceramic component is the placed 
Into two halves of a flat disk 1 0 the hollow spaces of which are filled wHh a softer grade of elastic material 9. 
Afterwards the two half spheres are moulded and fused together, for example by microwave heat 

40 

40 Description ofthe Sensor Unit ,o -ru- t. i oo„.«.o 

The same consists in thisexample of two halves fitted into a supportive frame 1 2. This frame also serves 
as receptacle for the data carrier component 10, which, as the drawing indicates, may be dropped into the 
sensor unit where it comes to rest on piston 2a The latter may be so connected to mechanical actuators that 
on completion of the data transfer transaction it is either sideways withdrawn so that the earner component 

45 is allowed to drop into a receptacle, orthe piston 20 is lifted upwards to return the componerit (10) to the 45 

user 13 and 14 are the two potlike parts. The outer diameter is about equal to the diagonal dimension of part 
1 of the portable data component. Drive coils are 15 and 17; and 16 has again much fewerturns and 
' mediates the data signal which in this proposal has a higherfrequency that the clock pulses injected Into 
coils 15 & 17 
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Description ofthe circuitry of the on-person data carrier. „„„ 
Figures 6,7 and 8 should be laid together, with Figure 6 atthe bottom and Rgurs 8 upmost to fomi one 
single circuit. The same provides an example for realizing an on-person data component by using an 
electrically alterable ROM. It is dear that the adaptation ofthe idea depends on the specific type of memory. 
55 Thepresentdescriptionisorientedtoa GlchlpknownasER1400forwhichad8tasheetisenclosed This 55 

circuit depends on the use of separate erase pulses having a negative voltage for erasing a memory ocatlon. 

More recent devices may not require this operation step but, on the other hand, may require others. What is 

described hereunder should therefore be taken only as an illustration of a principle, 
in flie proposed Earom chip one modificationfaas been made: n > r- en 

60 The General Instruments device uses all the combinations of three 'mode inputs' C, C3 except C, plus «n 

plus C3. in our setup, this combination is also used, namely for the command 'Enter data stream into the 

SubtrahentRegister' (such subtrahent register is not brovided in the General Instrument LSI.) 
TR1 is Identical with coil 3a in Figure 2. TR2 corresponds to coil 3, Figure 2. and TR3 corresponds to coil 4, 

Figure 2. TR1 carries dock pulses as indicated in Figure 5 and produces a d.c. output at Voo. TR2 cames the 
65 same dock pulses and produces a negative d.c. voltage Vqq. TR3 carries only data pulses phase shifted 
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against the clock pulses as indicated in Figure 5. They consist of pulses of a much higher frequency which are 
detected by tuned circuits or by a phase locked loop circuit in the main control unit {figure 9). Clock pulses 
are shaped in unit E and passed on to Nandgate N9 and also to a combined rectifier and delay unit H. The 
same builds up a positive voltage level and provides a triggered-outputto Q only aftera minimum voltage 

5 level is reached. G. is a bistable clock by output from E. When it goes high (which can only coincide with a 5 
rising clock-edge) Nandgate N9 goes low. At this time the zero condition stilt exists. However, And gate N3 
produces an output because (o) count of counter K and inverter Ml have both high levels. This furnishes the ^ 
OSC, unit <Rgure 7) with a hrgh enabling input via Or gate R16and causes the phase-locked loop IC, P to 
respond to the frequency of the signal transferred from circuit Figure 6 to circuit figure 9. Inconsequence a 

10 pulse, - the so called synchronizing pulse - will be applied to gate N 12 (figure 9) and thus to F/F 2 bistable. ^0 
From that moment onwards both systems, the portable data component and the data processing unit, are in 
readiness to accept count-down clock pulses originating at CK- OSC (figure 9). There are two counters in 
both systems, namely the L and K counter in the portable data component, and the Lq and Ko counter in the 
processor. . 

15 The K counters count up the word bits to.be handled during each program step (in this example there are 15 
only two bit lengths, 1 5 and 2). The L counters count the program steps, and its decoded outputs are used for 
enabling such gates and functional units or sub-circuits as during aigiven program step must play a part. 
The following are the program steps in this example: 

synchronizing pulse, one clock pulse wide 20 

transfer value location address from 
processor unit to portable carrier 

transfer value number from P.C. (portable 25 
carrier) to PR (processor). 

compare in PR value number with 
debit number in COMP circuit. Fig. 

30 

address for the check word is transferred 
from PR to PC 

transfer the check number selected in 

the PR on the basis of library numbers 35 
to the PC and enter into the Subtrahent 
register 

Read out the check number from the 

addressed location in the Memory 40 
and serially pass on to the 'Arithmetic Logic 
Unit' in chip circuit D which con- 
currently also circulates the contents 
of the subtrahent register through 

the 'Arithmetic Logic'. (Serial compa- 45 
rison). If the output is different 
from zero all further operation is 
stopped. 

50 »50 
CLAIMS 

1 . A data transfer system comprising a portable solid-state on-person data carrier and a computer unit, 
the portable carrier incorporating an electrically alterable memory device and means for causing mode 

55 control inputs to be activated in the.portable component in accordance with a pre-arranged schedule. 55 

2. As in Claim 1 in which the electrically alterable memory device comprises also a subtrahent register 
and and arithmetic logic circuit in an integrated condition. 

3. As in Claim 1 1n which the Computer comprises means for deriving from the data of the portable 
component one of several check numbers and means for presenting said check numbers to the portable 

60 component for intemal comparison 60 

4. As in any of the foregoing claims, means in the data carrying component for comparing check data 
received with check number held and means for disabling the clock circuit if disparity. 

5. As in 1 ) a portable component as shown in Rgure 1 and 2 

6. As in 1 ), a data sensor device, as showrr in Figure 3 and 4 

65 7. As in 1 ), means for changing the address locafion of check numbers and value numbers held in the 65 
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portable on-person data carrier. 

New daims or amendments to claims filed on 14 May 1979 
Superseded claims 1-7 

5 New or amended daims:- 1-11 5 

< 1. A data transfer system comprising a portable solid-state on-person data carrier, a sensor unit 
interfacing data, and a computer unit, the portable data carrier incorporating an electrically alterable 
memory device and means for causing mode control inputs to be activated in the portable data carrier for 
lOvConsecutively arranged operations in accordance with a set schedule. 10 

2. A data transfer system comprising a portable solid-state on-person data carrier, a sensor unit 
intercadng data, and a computer unit as in daim 1 in which the electrically alterable memory device 
comprises also a subtrahent register in an integrated condition. 

3. A data transfer system as in claim 1 in which the computer unit comprises means for deriving from the 

15 data transmitted from the portable on-person data carrier an indication which one of a number of possible 15 
check numbers is stored in the said portable data carrier, and means for activating the register holding said 
number in order to transmit it to the said portable data earner for comparison. 

4. A data transfer system as in any of the foregoing claims in which said the data carrier contains means 
for internally comparing the check number received Into its register with the check number held in one of its 

20 memory locations, and further means for disabling the continuation of the program if disparity of the two 20 
numbers is established. 

5. A data transfer system as in Claim 4 in which the circuit of the said portable data component also 
comprises means for sig nailing to the computer unit any disparity between the said two numbers in such a 
manner that thereby no condusions can be drawn as to the true check number held in one of the memory 

25 locations ofthe said portable data component, 25 

6. A data transfer system comprising a portable On-person solid state data carrier, a sensor unit 
interfadng data and dock pulses, and a computer unit, in which the said data carrier consists of a twin 
shallow disk with flanged rim made of magnetically permeable material the bottom plate of which is 
common to both, each having a centrally disposed stud of same material (the studs pointing in opposite 

30 directions) the rims of the dishes and the centre studs serving as transformer yokes for two magnetic drcuits 
which are completed by suitably shaped magnetic drcuits when the said data canrier is placed into the said 
sensor unit. 

7. A data transfer system comprising a portable on-person solid state data carrier, a sensor unit for data 
interfadng and dock pulses, and a computer unit as daimed in (6) in which the hoflow spaces ofthe two 

35 dish-like parts are filled with electronic drcuitry Induding large scale Integrated elements, suitably sealed 35 
against intrusion of moisture or gases. . 

8. A data transfer system as in daims 1 , 6 and 7 in which the computer unit provides unidirectional time 
reference signals (dockpulses) and electrical power to the said data component and exchanges 
bi-directionally data with the said portable data component whereby the said two magnetic drcuits in the 

40 absence of data convey clock pulses having a definite phase relationship with each other, one of which is 40 
used as the time reference signal while both are used for powering the portable component. 

9. A system as daimed in (8), in which data are transferred by assodating a data bit with a phase change 
between the two pulse channels. ^ u- u u ♦ * 

10. A data transfer system as in claims 1 and 6 comprising means for representing a data bit by a burst ot 

^ high frequency osdilation superimposed on the dock pulse flow in at least one of the said two pulse 45 
channels. 

. 11. A data transfer system as in daims 6 and 7, in which the portable data carrying component is 
enshrouded by a disk of resilient but formstable materia! to procure maximum protection against physical 
and temperature shocks. 
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